Improving robustness with image filtering

被引:0
|
作者
Terzi, Matteo [2 ]
Carletti, Mattia [1 ,2 ]
Susto, Gian Antonio [1 ,2 ]
机构
[1] Univ Padua, Human Inspired Technol Res Ctr, Padua, Italy
[2] Univ Padua, Dept Informat Engn, Padua, Italy
关键词
Robustness; Adversarial attacks and defenses; Adversarial training; Deep Neural Networks;
D O I
10.1016/j.neucom.2024.127927
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Adversarial robustness is one of the most challenging problems in Deep Learning and Computer Vision research. State-of-the-art techniques to enforce robustness are based on Adversarial Training, a computationally costly optimization procedure. For this reason, many alternative solutions have been proposed, but none proved effective under stronger or adaptive attacks. This paper presents Image-Graph Extractor (IGE), a new image filtering scheme that extracts the fundamental nodes of an image and their connections through a graph structure. By utilizing the IGE representation, we have developed a new defense technique, Filtering as a Defense, which prevents attackers from creating malicious patterns that can deceive image classifiers. Moreover, we show that data augmentation with filtered images effectively improves the model's robustness to data corruptions. We validate our techniques on Convolutional Neural Networks on CIFAR-10, CIFAR-100, and ImageNet.
引用
收藏
页数:11
相关论文
共 50 条
  • [1] Improving Robustness of Distributed Filtering for Sensor Networks Using FIR Filtering
    Vazquez-Olguin, Miguel
    Shmaliy, Yuriy S.
    Ibarra-Manzano, Oscar
    2016 13TH INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING, COMPUTING SCIENCE AND AUTOMATIC CONTROL (CCE), 2016,
  • [2] Improving robustness of visible image watermarks
    Shie, S. -C.
    Lin, S. D.
    IMAGING SCIENCE JOURNAL, 2008, 56 (01): : 23 - 28
  • [3] Rethinking and Improving the Robustness of Image Style Transfer
    Wang, Pei
    Li, Yijun
    Vasconcelos, Nuno
    2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR 2021, 2021, : 124 - 133
  • [4] Deep Learning for Improving the Robustness of Image Encryption
    Chen, Jing
    Li, Xiao-Wei
    Wang, Qiong-Hua
    IEEE ACCESS, 2019, 7 : 181083 - 181091
  • [5] Improving Robustness of Image Tampering Detection for Compression
    Diallo, Boubacar
    Urruty, Thierry
    Bourdon, Pascal
    Fernandez-Maloigne, Christine
    MULTIMEDIA MODELING (MMM 2019), PT I, 2019, 11295 : 387 - 398
  • [6] Improving the Robustness of the Dominant Mode Rejection Beamformer With Median Filtering
    Anchieta, David Campos
    Buck, John R.
    IEEE ACCESS, 2022, 10 : 120146 - 120154
  • [7] Improving the Robustness of Visual-Inertial Extended Kalman Filtering
    Jackson, James
    Nielsen, Jerel
    McLain, Tim
    Beard, Randal
    2019 INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION (ICRA), 2019, : 4703 - 4709
  • [8] Low-Pass Image Filtering to Achieve Adversarial Robustness
    Ziyadinov, Vadim
    Tereshonok, Maxim
    SENSORS, 2023, 23 (22)
  • [9] Improving Image Captioning with Feature Filtering and Injection
    Guo, Menghao
    Chen, Qiaohong
    Fang, Xian
    Bao, Jia
    Xiang, Shenxiang
    ARTIFICIAL NEURAL NETWORKS AND MACHINE LEARNING, ICANN 2023, PT II, 2023, 14255 : 373 - 384
  • [10] Improving the Robustness of Capsule Networks to Image Affine Transformations
    Gu, Jindong
    Tresp, Volker
    2020 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2020, : 7283 - 7291